From: Philippe Antoine Date: Thu, 5 Nov 2020 13:03:56 +0000 (+0100) Subject: Adds test against invalid HTTP protocol X-Git-Tag: suricata-6.0.4~210 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=b197c2fca6a0016234aa91e803200bfeb2b10514;p=thirdparty%2Fsuricata-verify.git Adds test against invalid HTTP protocol --- diff --git a/tests/http-protocol-nodup/README.md b/tests/http-protocol-nodup/README.md new file mode 100644 index 000000000..f2c264a3e --- /dev/null +++ b/tests/http-protocol-nodup/README.md @@ -0,0 +1,7 @@ +# Description + +Test agasint http bug where protocol had duplicated content from the request line + +# PCAP + +The pcap comes from https://github.com/OISF/libhtp/issues/304 diff --git a/tests/http-protocol-nodup/input.pcap b/tests/http-protocol-nodup/input.pcap new file mode 100644 index 000000000..bba196e16 Binary files /dev/null and b/tests/http-protocol-nodup/input.pcap differ diff --git a/tests/http-protocol-nodup/test.yaml b/tests/http-protocol-nodup/test.yaml new file mode 100644 index 000000000..bd999d0bb --- /dev/null +++ b/tests/http-protocol-nodup/test.yaml @@ -0,0 +1,10 @@ +requires: + features: + - HAVE_LIBJANSSON + +checks: + - filter: + count: 40 + match: + event_type: http + http.protocol: HTTP/1.1